CVE-2017-1000373
MEDIUMOpenBSD <6.1 - RCE
Title source: llmDescription
The OpenBSD qsort() function is recursive, and not randomized, an attacker can construct a pathological input array of N elements that causes qsort() to deterministically recurse N/4 times. This allows attackers to consume arbitrary amounts of stack memory and manipulate stack memory to assist in arbitrary code execution attacks. This affects OpenBSD 6.1 and possibly earlier versions.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Qualys Corporation · clocalopenbsd
https://www.exploit-db.com/exploits/42271
References (9)
Scores
CVSS v3
6.5
EPSS
0.1875
EPSS Percentile
95.2%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
Details
CWE
CWE-400
Status
published
Products (2)
openbsd/openbsd
< 6.1
n/a/n/a
Published
Jun 19, 2017
Tracked Since
Feb 18, 2026